Vulnerability Library

ID
Packages
Summary
Published
arrow_upward
Attributes
GHSA-fg86-4c2r-7wxw
  • Packagist/torrentpier/torrentpier
TorrentPier Deserialization of Untrusted Data vulnerability 14 hours ago
  • No fix available
  • Severity - 9.3 (Critical)
GHSA-875x-g8p7-5w27
  • Packagist/web-auth/webauthn-lib
  • Packagist/web-auth/webauthn-framework
The FIDO2/Webauthn Support for PHP library allows enumeration of valid usernames 15 hours ago
  • Fix available
  • Severity - 6.9 (Medium)
GHSA-x6p7-44rh-m3rr
  • Packagist/auth0/wordpress
Login by Auth0 plugin for WordPress vulnerable to Reflected Cross-Site Scripting 4 days ago
  • Fix available
  • Severity - 5.1 (Medium)
GHSA-mqqj-fx8h-437j
  • Packagist/privatebin/privatebin
PrivateBin allows shortening of URLs for other domains 5 days ago
  • Fix available
  • Severity - 6.9 (Medium)
GHSA-pj36-fcrg-327j
  • Packagist/ssddanbrown/bookstack
BookStack Incorrect Access Control vulnerability 6 days ago
  • Fix available
  • Severity - 8.8 (High)
GHSA-phg7-8mm9-gj88
  • Packagist/egroupware/egroupware
EGroupware mishandles an ORDER BY clause 07 Jul
  • Fix available
  • Severity - 8.7 (High)
GHSA-m9gv-6p22-qgmj
  • Packagist/aimeos/ai-controller-frontend
ai-controller-frontend payment status in basket isn't reset 05 Jul
  • Fix available
  • Severity - 5.3 (Medium)
GHSA-c96r-38gv-grp4
  • Packagist/shopxo/shopxo
ShopXO Server-Side Request Forgery Vulnerability 05 Jul
  • No fix available
  • Severity - 5.3 (Medium)
GHSA-8fj2-587w-5whr
  • Packagist/aimeos/ai-admin-jsonadm
aimeos/ai-admin-jsonadm improper access control vulnerability allows editors to remove required records 02 Jul
  • Fix available
  • Severity - 5.5 (Medium)
GHSA-jj68-cp4v-98qf
  • Packagist/aimeos/ai-admin-graphql
aimeos/ai-admin-graphql improper access control vulnerability allows editors to manage own services 02 Jul
  • Fix available
  • Severity - 3.8 (Low)
GHSA-vc7j-99jw-jrqm
  • Packagist/aimeos/ai-admin-graphql
aimeos/ai-admin-graphql improper access control vulnerability allows an editor to modify admin account 02 Jul
  • Fix available
  • Severity - 8.2 (High)
GHSA-ff7q-6vwh-v9m4
  • Packagist/phpseclib/phpseclib
Name confusion in x509 Subject Alternative Name fields 28 Jun
  • Fix available
  • Severity - 8.7 (High)
GHSA-v2vf-jv88-3fp5
  • Packagist/october/system
October System module has an Open Redirect for Administrator Accounts 26 Jun
  • Fix available
  • Severity - 3.5 (Low)
GHSA-rjw8-v7rr-r563
  • Packagist/october/system
October System module has a Reflected XSS via X-October-Request-Handler Header 26 Jun
  • Fix available
  • Severity - 3.1 (Low)
GHSA-ppm5-jv84-2xg2
  • Packagist/aimeos/ai-client-html
Aimeos HTML client may potentially reveal sensitive information in error log 25 Jun
  • Fix available
  • Severity - 8.8 (High)
GHSA-7q3h-j95q-3vjh
  • Packagist/opencart/opencart
Arbitrary File Creation in opencart 22 Jun
  • No fix available
  • Severity - 7.1 (High)